CVE-2026-89924

medium

Description

In the Linux kernel, the following vulnerability has been resolved: KVM: s390: Fix old_data leak in guest debug error path __import_wp_info() allocates a per-watchpoint old_data buffer to back up the original guest memory contents. If a later watchpoint of the same KVM_SET_GUEST_DEBUG request fails to import, kvm_s390_import_bp_data() jumps to the error label, which frees the wp_info array but not the old_data buffers of the entries that were imported successfully. Up to MAX_BP_COUNT - 1 buffers of up to MAX_WP_SIZE bytes are leaked per failed request, and the request can be repeated. Create error handling for cleaning up all created old_data memory areas.

References

https://git.kernel.org/stable/c/f55e4d415d95342d5753e528e05a1e8623992c3f

https://git.kernel.org/stable/c/e5ae7816e5ad145618f7fd568a0e8a94dd9f81f4

https://git.kernel.org/stable/c/c85d402553987777cc4742751437ea5dcbf98a7b

https://git.kernel.org/stable/c/aa9c8e8baf1e765fa65b93212522c636f25d846f

https://git.kernel.org/stable/c/5fbf319137735252eefa507193c9a619af5b7457

https://git.kernel.org/stable/c/46cb8a273e2f853f89a78b59dbdff8787b6e1c86

https://git.kernel.org/stable/c/4048d0a252163084794be3e37995b872c5178913

https://git.kernel.org/stable/c/124c81ee610e1fbdd93d4399f88d9e28ba97a941

Details

Source: Mitre, NVD

Published: 2026-09-16

Updated: 2026-09-16

Risk Information

CVSS v2

Base Score: 5.6

Vector: CVSS2#AV:L/AC:L/Au:N/C:P/I:N/A:C

Severity: Medium

CVSS v3

Base Score: 5.5

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Severity: Medium

EPSS

EPSS: 0.00211